SOC Analyst L2
Australia
Black Box
Black Box is the leading provider of copper cabling, patch cabling, and bulk cable for your business communications system. Contact us today.Responsibilities:
- Act as the primary point of contact for incident escalations from Tier 1/2 analysts.
- Act as technical contributor during major security incidents contributing to improvement in the team’s capability.
- Lead the investigation and response to security incidents, leveraging advanced technical skills and threat intelligence.
- Triage security alerts, perform in-depth analysis to determine root cause and impact, and develop effective containment and remediation strategies.
- Develop and execute incident response plans, ensuring proper communication and documentation throughout the incident lifecycle.
- Work in a ‘business hours + rostered on-call’ environment
- Utilize SIEM (Security Information and Event Management) and other security tools to identify and analyze potential threats.
- Develop and fine-tune security rules and correlation logic to improve threat detection capabilities.
- Maintain detailed documentation of security incidents, investigations, and response actions.
Requirements:
- 5-7 years of experience in a SOC or security analyst role.
- Proven track record of successfully identifying, analyzing, and responding to security incidents.
- Strong background in formulation and execution of threat hunt scenarios and the development of subsequent use cases to uplift detection capability.
- Experience working on any of the scripting languages such as Python etc.
- Relevant industry certifications such as GIAC Certified Incident Handler (GCIH), Certified Information Systems Security Professional (CISSP), or CompTIA Security or Vendor certs are highly desirable.
- In-depth knowledge of Sentinel, Splunk, CrowdStrike, Securonix, LogRhythm, Rapid7 MS Defender, other Threat centric tools, IDS/IPS, email security, vulnerability scanners and other security technologies.
- Detection and mitigation strategies for a broad range of cyber threats, including malware, DDOS, hacking, phishing, lateral movement and data exfiltration.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Categories:
Analyst Jobs
Incident Response Jobs
Tags: CISSP CompTIA CrowdStrike DDoS GCIH GIAC IDS Incident response IPS LogRhythm Malware Python Scripting Sentinel SIEM SOC Splunk Threat detection Threat intelligence
Region:
Asia/Pacific
Country:
Australia
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Senior Cloud Security Engineer jobsSecurity Operations Engineer jobsSystems Administrator jobsSenior Cybersecurity Engineer jobsSenior Security Analyst jobsInformation Security Manager jobsCybersecurity Editor jobsSenior Information Security Analyst jobsCybersecurity Content Editor jobsCyber Security Specialist jobsIT Security Analyst jobsSenior Network Security Engineer jobsSenior Information Security Engineer jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsSenior Product Security Engineer jobsChief Information Security Officer jobsInformation Systems Security Engineer jobsIT Security Engineer jobsSecurity Specialist jobsCyber Threat Intelligence Analyst jobsSenior Cyber Security Engineer jobsCybersecurity Specialist jobsSenior Software Engineer jobsSenior IT Auditor jobs
EDR jobsJava jobsEncryption jobsTS/SCI jobsCEH jobsSplunk jobsThreat detection jobsTerraform jobsTop Secret jobsIDS jobsMalware jobsSDLC jobsIPS jobsRMF jobsFinance jobsSQL jobsForensics jobsDocker jobsSOC 2 jobsActive Directory jobsIntrusion detection jobsCompTIA jobsOWASP jobsAnsible jobsITIL jobs
CRISC jobsVPN jobsClearance Required jobsHIPAA jobsGIAC jobsTCP/IP jobsIT infrastructure jobsDoDD 8570 jobsJira jobsSOX jobsMITRE ATT&CK jobsOSCP jobsData Analytics jobsBanking jobsSOAR jobsDNS jobsCCSP jobsIndustrial jobsJavaScript jobsZero Trust jobsCISO jobsUNIX jobsGCIH jobsNIST 800-53 jobsSecurity strategy jobs